Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] '{1D476073-5E7F-AD41-B897-60D4A63F43C6}' = '"%APPDATA%\Ojje\ecjiq.exe"'
- [<HKLM>\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] 'DisableNotifications' = '00000001'
- %APPDATA%\Ojje\ecjiq.exe
- <Служебный элемент>
- %TEMP%\tmpadab78e6.bat
- <LS_APPDATA>\mytae.ihk
- %APPDATA%\Ojje\ecjiq.exe
- '95.#.111.195':22305
- '93.##7.149.13':20184
- '18#.#80.103.254':13452
- '46.#9.88.66':24090
- '12#.#49.23.243':22348
- '93.##6.223.97':10094
- '20#.#43.84.155':29379
- '46.#9.8.231':13361
- ClassName: 'Indicator' WindowName: ''